Here for remote assistance?

Enter the 9 digit assist code provided by your support technician here.

Known Microsoft Service Issues

No widespread Microsoft service issues reported
No active widespread incidents are being reported by Microsoft. Service is operating as expected.
Exchange No widespread issues reported
Azure No widespread issues reported
SharePoint No widespread issues reported
Microsoft Entra No widespread issues reported
Data pulled just now Checking Microsoft...

Cyber-Security Threat News

Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes

5 Oct 2026
Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions.
READ FULL ARTICLE →

⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests

5 Oct 2026
A blank field. A public repo. One reply to an email. A box left exposed. None of this sounds dramatic, which is partly the problem. This week’s threats keep finding leverage in small things that were easy to overlook.
READ FULL ARTICLE →

The Credential Layer Is Expanding Faster Than Security Teams Can See It

5 Oct 2026
Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected capabilities: Detect, Remediate, and Prevent. The journey starts with detection, because organizations first need to understand what credentials exist, where they live, and what they
READ FULL ARTICLE →

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

5 Oct 2026
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling.
READ FULL ARTICLE →

Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access

5 Oct 2026
Apple has announced that it's taking steps to tighten controls around a macOS setting called Full Disk Access (FDA) due to security risks posed by artificial intelligence (AI) agents.
READ FULL ARTICLE →

Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE

5 Oct 2026
A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck.
READ FULL ARTICLE →

New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline

5 Oct 2026
Citrix has released security updates for a high-severity security flaw in NetScaler ADC and NetScaler Gateway that has been exploited as part of targeted zero-day attacks.
READ FULL ARTICLE →

ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members

4 Oct 2026
A suspected member of the ShinyHunters digital extortion group, who goes by the online alias "Rey," has been allegedly detained by authorities in Jordan, Reuters reported, citing three people familiar with the matter.
READ FULL ARTICLE →

China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing

4 Oct 2026
A new China-nexus cyber espionage group known as TA419 has been attributed to multiple credential phishing campaigns targeting artificial intelligence (AI) experts working for U.S. think tanks, universities, and legal sector organizations.
READ FULL ARTICLE →

MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics

3 Oct 2026
The U.K.'s domestic intelligence and security agency has warned that more than 100 academics have helped China boost its intelligence gathering efforts on behalf of Beijing's state security service.
READ FULL ARTICLE →

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

3 Oct 2026
The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries.
READ FULL ARTICLE →

The State of Cybersecurity in 2026: Key Segments, Insights, and Innovations

3 Oct 2026
Featuring:
READ FULL ARTICLE →

GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers

2 Oct 2026
A critical flaw in GitLab's AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory.
READ FULL ARTICLE →

Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign

2 Oct 2026
Government and policy organizations across Asia have become the target of a new campaign orchestrated by a China-nexus threat actor.
READ FULL ARTICLE →

Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes

2 Oct 2026
Dell has released security updates to address multiple critical security flaws in Dell Container Storage Modules (CSM) that could be exploited by bad actors to take over susceptible systems.
READ FULL ARTICLE →

OpenAI Parts Ways With Three Safety Researchers Over Sensitive Information Mishandling

2 Oct 2026
OpenAI has parted ways with three members of its safety team after they leaked private information in violation of company policies, The Wall Street Journal reported.
READ FULL ARTICLE →

Why CISOs Struggle to Answer the Board's Three Hardest Questions, and How to Fix the Report

2 Oct 2026
The quarterly board meeting is two weeks out. The security team is pulling exports from the identity provider, the cloud posture tool, the vulnerability scanner, the SIEM and the EDR console. Someone is building a spreadsheet to reconcile them. Someone else is turning that spreadsheet into slides.
READ FULL ARTICLE →

Android 17 Advanced Protection Locks Accessibility Services to Verified Accessibility Tools

2 Oct 2026
Google has announced a new security measure that limits access to Android's accessibility services to verified applications classified as Accessibility Tools when Advanced Protection is enabled.
READ FULL ARTICLE →

Critical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File Writes

2 Oct 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added a critical security flaw impacting Fortinet FortiMail to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation.
READ FULL ARTICLE →

Police Arrest 16-Year-Old Suspected of Running KillSec, Seize Ransomware Leak Site and Servers

1 Oct 2026
Police in Spain have arrested a 16-year-old whom investigators suspect of running the KillSec ransomware group. KillSec is accused of stealing data from organizations and threatening to publish it on its leak site unless they paid.
READ FULL ARTICLE →

ThreatsDay: AI-Powered Zero-Day Chain, 543K Live Secrets, Model Inspection RCE and 13 More Stories

1 Oct 2026
This week, the useful words are boring ones: inspect, cache, compile, store, trust. Each sounds harmless. Each can become an attack path when a system does a little more than people expect. A model check can run code. A cache can mix up requests. A public secret can stay useful for years.
READ FULL ARTICLE →

WordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared Memory

1 Oct 2026
Cybersecurity researchers have shed light on a WordPress compromise in which threat actors deployed multiple persistence mechanisms to ensure that the final payload kept returning without having to infect the site again.
READ FULL ARTICLE →

How Financial Services Companies Can Modernize Their Software Supply Chain

1 Oct 2026
Every security leader at a bank, insurer, or asset manager has had a version of this conversation: Security wants to eliminate a class of vulnerabilities. Engineering explains what it would take to upgrade the platform where they live. Somebody prices out the regression testing. Somebody else raises the change-freeze calendar. The finding gets an exception, a compensating control, and a date
READ FULL ARTICLE →

OpenAI Disrupts Reasoning Extraction Campaign Linked to Moonshot AI Associates

1 Oct 2026
OpenAI on Wednesday said it identified and disrupted a coordinated distillation campaign that was designed to illicitly extract protected reasoning from its artificial intelligence (AI) models.
READ FULL ARTICLE →

CISA Adds Exploited Cisco Catalyst SD-WAN Manager Auth Bypass to KEV

1 Oct 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical authentication bypass flaw impacting Cisco Catalyst SD-WAN Manager to its Known Exploited Vulnerabilities (KEV), following reports of active exploitation.
READ FULL ARTICLE →

Google Rolls Out Gemini 4 Argon to Trusted Cyber Defenders, Plans Guardrail-Free Version

1 Oct 2026
Google on Wednesday announced its latest frontier artificial intelligence (AI) model, Gemini 4 Argon, that it said is being rolled out to a set of trusted cyber defenders through its Fairwind Program.
READ FULL ARTICLE →

Apple CoreGraphics PoC Emerges as WhatsApp PDF Checks Hint at Possible Delivery Path

1 Oct 2026
Security researchers have published the first public proof-of-concept for CVE-2026-86950, an Apple CoreGraphics flaw Apple says may have been used in attacks against specific targeted individuals.
READ FULL ARTICLE →

Bitget Confirms Third-Party Zero-Day Behind $387.5 Million Cryptocurrency Theft

1 Oct 2026
Cryptocurrency exchange Bitget on Wednesday confirmed that attackers who stole $387.5 million last week exploited a zero-day flaw in third-party security products, citing ongoing investigation findings from SlowMist.
READ FULL ARTICLE →

MetaMask Security Incident Prompts Exit of Affected Ethereum Validators

1 Oct 2026
MetaMask on Thursday said it's responding to what it described as an "ongoing security incident" impacting part of its infrastructure.
READ FULL ARTICLE →

Citrix NetScaler Post-Exploitation Payload Creates Superuser, Maps Web Shell to CSS-Like URLs

1 Oct 2026
Threat actors have been observed exploiting a critical pre-authentication command injection vulnerability in Citrix NetScaler ADC and NetScaler Gateway to drop web shells and attempt theft of configuration data.
READ FULL ARTICLE →

Attackers Exploit Zimbra Flaw to Deploy Web Shells and Harvest Authentication Secrets

30 Sep 2026
Threat actors have weaponized a now-patched security flaw in Zimbra Collaboration Suite (ZCS) to deploy web shells and access mailbox data, according to findings from the Microsoft Security Research team.
READ FULL ARTICLE →

Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Attacks

30 Sep 2026
Microsoft has warned of phishing campaigns distributing an installer for the MSP360 Remote Monitoring and Management (RMM) software under the guise of meeting invitations, PDF-themed lures, software update prompts, and other social-engineering content.
READ FULL ARTICLE →

Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager

30 Sep 2026
Attackers are exploiting a new critical zero-day flaw in Cisco Catalyst SD-WAN Manager, the system companies use to manage their Cisco SD-WAN networks, Cisco said in an advisory on September 30.
READ FULL ARTICLE →

Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures

30 Sep 2026
Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting victims to malicious sites that employ ClickFix lures to deliver malware.
READ FULL ARTICLE →

Know Your Enemy: Browser-Based Attack Techniques in 2026

30 Sep 2026
Given that the browser is where business apps are accessed and used, it makes sense that attacks are happening there too. Most breaches today begin in a browser session. Often, they never leave it, with the entire attack chain from initial access to exfiltration playing out in the browser.
READ FULL ARTICLE →

AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub

30 Sep 2026
AI coding agents asked to share screenshots of code changes for review have put internal company images in public GitHub repositories, security company Glow said.
READ FULL ARTICLE →

US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access

30 Sep 2026
ANY.RUN researchers traced a US-focused CSuite phishing campaign across 351 sandbox analyses, with 51% of submissions coming from the United States. Technology, manufacturing, government, and consulting organizations showed the highest exposure.
READ FULL ARTICLE →

Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT

30 Sep 2026
Unknown threat actors have been observed exploiting a newly patched security flaw in Citrix NetScaler ADC and NetScaler Gateway appliances to target organizations in North America and Europe.
READ FULL ARTICLE →

OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted

30 Sep 2026
A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash the program, OpenSSL said on September 29 as it released fixes.
READ FULL ARTICLE →

Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution

30 Sep 2026
Cybersecurity researchers have disclosed technical details of a recently patched critical security flaw in Citrix NetScaler ADC and Gateway that has come under active exploitation in the wild.
READ FULL ARTICLE →

French Tax Data Theft Using Stolen Staff Passwords Went Undetected for Seven Weeks

29 Sep 2026
An attacker used stolen passwords of staff at France's tax administration to take tax data on hundreds of thousands of taxpayers and businesses in June and July.
READ FULL ARTICLE →

New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses

29 Sep 2026
A group of academics from VUSec and Scuola Superiore Sant'Anna have disclosed details of a new Spectre CPU vulnerability variant that affects Just-In-Time (JIT) engines present in web browsers, language runtimes, and the operating system kernel, across multiple CPU vendors.
READ FULL ARTICLE →

Russia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor

29 Sep 2026
Russian state hackers known as Star Blizzard have been using fake event invitations to trick people into installing a backdoor on their Windows computers, according to Microsoft.
READ FULL ARTICLE →

Kiteworks Fixes Critical Flaw Found During Nine-Hour Precautionary Shutdown

29 Sep 2026
Kiteworks on Monday said it worked with federal intelligence authorities over the weekend as it identified and addressed a critical security vulnerability during the scheduled precautionary shutdown.
READ FULL ARTICLE →

101 Malicious npm Packages Add Developers' WhatsApp Accounts to Groups Without Consent

29 Sep 2026
Cybersecurity researchers have identified a cluster of 101 npm packages that are used to trap developers into a WhatsApp group subscriber campaign dubbed PhantomSub.
READ FULL ARTICLE →

Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation

29 Sep 2026
Dutch authorities have confirmed that they arrested a 24-year-old man from Amsterdam in connection with the ShinyHunters group.
READ FULL ARTICLE →

Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials

29 Sep 2026
A malicious MCP server could trick an application built on the official MCP Python SDK into handing over the OAuth credentials it uses to log in to a real service, the SDK's maintainers said in a security advisory.
READ FULL ARTICLE →

OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions

29 Sep 2026
OpenAI on Monday shelved plans to release GPT-6.1 Astra, a next-generation artificial intelligence (AI) model that was planned for an October launch, after it failed internal safety and alignment audits.
READ FULL ARTICLE →

OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot

29 Sep 2026
OpenAI said it has made the decision to pause training of its most powerful models after one of its agents during reinforcement learning (RL) training contacted an external chatbot by exploiting a loophole in its internet-access restrictions.
READ FULL ARTICLE →

Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks

28 Sep 2026
Apple has released security updates to address a vulnerability in older versions of iOS, iPadOS, and macOS that it said may have been exploited in targeted attacks.
READ FULL ARTICLE →

Submit a Ticket

Submit a Ticket

Known Microsoft Service Issues

No widespread Microsoft service issues reported
No active widespread incidents are being reported by Microsoft. Service is operating as expected.
Exchange No widespread issues reported
Azure No widespread issues reported
SharePoint No widespread issues reported
Microsoft Entra No widespread issues reported
Data pulled just now Checking Microsoft...

Cyber-Security Threat News

Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes

5 Oct 2026
Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions.
READ FULL ARTICLE →

⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests

5 Oct 2026
A blank field. A public repo. One reply to an email. A box left exposed. None of this sounds dramatic, which is partly the problem. This week’s threats keep finding leverage in small things that were easy to overlook.
READ FULL ARTICLE →

The Credential Layer Is Expanding Faster Than Security Teams Can See It

5 Oct 2026
Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected capabilities: Detect, Remediate, and Prevent. The journey starts with detection, because organizations first need to understand what credentials exist, where they live, and what they
READ FULL ARTICLE →

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

5 Oct 2026
Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling.
READ FULL ARTICLE →

Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access

5 Oct 2026
Apple has announced that it's taking steps to tighten controls around a macOS setting called Full Disk Access (FDA) due to security risks posed by artificial intelligence (AI) agents.
READ FULL ARTICLE →

Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE

5 Oct 2026
A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck.
READ FULL ARTICLE →

New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline

5 Oct 2026
Citrix has released security updates for a high-severity security flaw in NetScaler ADC and NetScaler Gateway that has been exploited as part of targeted zero-day attacks.
READ FULL ARTICLE →

ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members

4 Oct 2026
A suspected member of the ShinyHunters digital extortion group, who goes by the online alias "Rey," has been allegedly detained by authorities in Jordan, Reuters reported, citing three people familiar with the matter.
READ FULL ARTICLE →

China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing

4 Oct 2026
A new China-nexus cyber espionage group known as TA419 has been attributed to multiple credential phishing campaigns targeting artificial intelligence (AI) experts working for U.S. think tanks, universities, and legal sector organizations.
READ FULL ARTICLE →

MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics

3 Oct 2026
The U.K.'s domestic intelligence and security agency has warned that more than 100 academics have helped China boost its intelligence gathering efforts on behalf of Beijing's state security service.
READ FULL ARTICLE →

Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomware

3 Oct 2026
The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries.
READ FULL ARTICLE →

The State of Cybersecurity in 2026: Key Segments, Insights, and Innovations

3 Oct 2026
Featuring:
READ FULL ARTICLE →

GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers

2 Oct 2026
A critical flaw in GitLab's AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory.
READ FULL ARTICLE →

Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign

2 Oct 2026
Government and policy organizations across Asia have become the target of a new campaign orchestrated by a China-nexus threat actor.
READ FULL ARTICLE →

Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes

2 Oct 2026
Dell has released security updates to address multiple critical security flaws in Dell Container Storage Modules (CSM) that could be exploited by bad actors to take over susceptible systems.
READ FULL ARTICLE →

OpenAI Parts Ways With Three Safety Researchers Over Sensitive Information Mishandling

2 Oct 2026
OpenAI has parted ways with three members of its safety team after they leaked private information in violation of company policies, The Wall Street Journal reported.
READ FULL ARTICLE →

Why CISOs Struggle to Answer the Board's Three Hardest Questions, and How to Fix the Report

2 Oct 2026
The quarterly board meeting is two weeks out. The security team is pulling exports from the identity provider, the cloud posture tool, the vulnerability scanner, the SIEM and the EDR console. Someone is building a spreadsheet to reconcile them. Someone else is turning that spreadsheet into slides.
READ FULL ARTICLE →

Android 17 Advanced Protection Locks Accessibility Services to Verified Accessibility Tools

2 Oct 2026
Google has announced a new security measure that limits access to Android's accessibility services to verified applications classified as Accessibility Tools when Advanced Protection is enabled.
READ FULL ARTICLE →

Critical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File Writes

2 Oct 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added a critical security flaw impacting Fortinet FortiMail to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation.
READ FULL ARTICLE →

Police Arrest 16-Year-Old Suspected of Running KillSec, Seize Ransomware Leak Site and Servers

1 Oct 2026
Police in Spain have arrested a 16-year-old whom investigators suspect of running the KillSec ransomware group. KillSec is accused of stealing data from organizations and threatening to publish it on its leak site unless they paid.
READ FULL ARTICLE →

ThreatsDay: AI-Powered Zero-Day Chain, 543K Live Secrets, Model Inspection RCE and 13 More Stories

1 Oct 2026
This week, the useful words are boring ones: inspect, cache, compile, store, trust. Each sounds harmless. Each can become an attack path when a system does a little more than people expect. A model check can run code. A cache can mix up requests. A public secret can stay useful for years.
READ FULL ARTICLE →

WordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared Memory

1 Oct 2026
Cybersecurity researchers have shed light on a WordPress compromise in which threat actors deployed multiple persistence mechanisms to ensure that the final payload kept returning without having to infect the site again.
READ FULL ARTICLE →

How Financial Services Companies Can Modernize Their Software Supply Chain

1 Oct 2026
Every security leader at a bank, insurer, or asset manager has had a version of this conversation: Security wants to eliminate a class of vulnerabilities. Engineering explains what it would take to upgrade the platform where they live. Somebody prices out the regression testing. Somebody else raises the change-freeze calendar. The finding gets an exception, a compensating control, and a date
READ FULL ARTICLE →

OpenAI Disrupts Reasoning Extraction Campaign Linked to Moonshot AI Associates

1 Oct 2026
OpenAI on Wednesday said it identified and disrupted a coordinated distillation campaign that was designed to illicitly extract protected reasoning from its artificial intelligence (AI) models.
READ FULL ARTICLE →

CISA Adds Exploited Cisco Catalyst SD-WAN Manager Auth Bypass to KEV

1 Oct 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical authentication bypass flaw impacting Cisco Catalyst SD-WAN Manager to its Known Exploited Vulnerabilities (KEV), following reports of active exploitation.
READ FULL ARTICLE →

Google Rolls Out Gemini 4 Argon to Trusted Cyber Defenders, Plans Guardrail-Free Version

1 Oct 2026
Google on Wednesday announced its latest frontier artificial intelligence (AI) model, Gemini 4 Argon, that it said is being rolled out to a set of trusted cyber defenders through its Fairwind Program.
READ FULL ARTICLE →

Apple CoreGraphics PoC Emerges as WhatsApp PDF Checks Hint at Possible Delivery Path

1 Oct 2026
Security researchers have published the first public proof-of-concept for CVE-2026-86950, an Apple CoreGraphics flaw Apple says may have been used in attacks against specific targeted individuals.
READ FULL ARTICLE →

Bitget Confirms Third-Party Zero-Day Behind $387.5 Million Cryptocurrency Theft

1 Oct 2026
Cryptocurrency exchange Bitget on Wednesday confirmed that attackers who stole $387.5 million last week exploited a zero-day flaw in third-party security products, citing ongoing investigation findings from SlowMist.
READ FULL ARTICLE →

MetaMask Security Incident Prompts Exit of Affected Ethereum Validators

1 Oct 2026
MetaMask on Thursday said it's responding to what it described as an "ongoing security incident" impacting part of its infrastructure.
READ FULL ARTICLE →

Citrix NetScaler Post-Exploitation Payload Creates Superuser, Maps Web Shell to CSS-Like URLs

1 Oct 2026
Threat actors have been observed exploiting a critical pre-authentication command injection vulnerability in Citrix NetScaler ADC and NetScaler Gateway to drop web shells and attempt theft of configuration data.
READ FULL ARTICLE →

Attackers Exploit Zimbra Flaw to Deploy Web Shells and Harvest Authentication Secrets

30 Sep 2026
Threat actors have weaponized a now-patched security flaw in Zimbra Collaboration Suite (ZCS) to deploy web shells and access mailbox data, according to findings from the Microsoft Security Research team.
READ FULL ARTICLE →

Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Attacks

30 Sep 2026
Microsoft has warned of phishing campaigns distributing an installer for the MSP360 Remote Monitoring and Management (RMM) software under the guise of meeting invitations, PDF-themed lures, software update prompts, and other social-engineering content.
READ FULL ARTICLE →

Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager

30 Sep 2026
Attackers are exploiting a new critical zero-day flaw in Cisco Catalyst SD-WAN Manager, the system companies use to manage their Cisco SD-WAN networks, Cisco said in an advisory on September 30.
READ FULL ARTICLE →

Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures

30 Sep 2026
Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting victims to malicious sites that employ ClickFix lures to deliver malware.
READ FULL ARTICLE →

Know Your Enemy: Browser-Based Attack Techniques in 2026

30 Sep 2026
Given that the browser is where business apps are accessed and used, it makes sense that attacks are happening there too. Most breaches today begin in a browser session. Often, they never leave it, with the entire attack chain from initial access to exfiltration playing out in the browser.
READ FULL ARTICLE →

AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub

30 Sep 2026
AI coding agents asked to share screenshots of code changes for review have put internal company images in public GitHub repositories, security company Glow said.
READ FULL ARTICLE →

US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access

30 Sep 2026
ANY.RUN researchers traced a US-focused CSuite phishing campaign across 351 sandbox analyses, with 51% of submissions coming from the United States. Technology, manufacturing, government, and consulting organizations showed the highest exposure.
READ FULL ARTICLE →

Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT

30 Sep 2026
Unknown threat actors have been observed exploiting a newly patched security flaw in Citrix NetScaler ADC and NetScaler Gateway appliances to target organizations in North America and Europe.
READ FULL ARTICLE →

OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted

30 Sep 2026
A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash the program, OpenSSL said on September 29 as it released fixes.
READ FULL ARTICLE →

Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution

30 Sep 2026
Cybersecurity researchers have disclosed technical details of a recently patched critical security flaw in Citrix NetScaler ADC and Gateway that has come under active exploitation in the wild.
READ FULL ARTICLE →

French Tax Data Theft Using Stolen Staff Passwords Went Undetected for Seven Weeks

29 Sep 2026
An attacker used stolen passwords of staff at France's tax administration to take tax data on hundreds of thousands of taxpayers and businesses in June and July.
READ FULL ARTICLE →

New Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing Defenses

29 Sep 2026
A group of academics from VUSec and Scuola Superiore Sant'Anna have disclosed details of a new Spectre CPU vulnerability variant that affects Just-In-Time (JIT) engines present in web browsers, language runtimes, and the operating system kernel, across multiple CPU vendors.
READ FULL ARTICLE →

Russia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor

29 Sep 2026
Russian state hackers known as Star Blizzard have been using fake event invitations to trick people into installing a backdoor on their Windows computers, according to Microsoft.
READ FULL ARTICLE →

Kiteworks Fixes Critical Flaw Found During Nine-Hour Precautionary Shutdown

29 Sep 2026
Kiteworks on Monday said it worked with federal intelligence authorities over the weekend as it identified and addressed a critical security vulnerability during the scheduled precautionary shutdown.
READ FULL ARTICLE →

101 Malicious npm Packages Add Developers' WhatsApp Accounts to Groups Without Consent

29 Sep 2026
Cybersecurity researchers have identified a cluster of 101 npm packages that are used to trap developers into a WhatsApp group subscriber campaign dubbed PhantomSub.
READ FULL ARTICLE →

Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation

29 Sep 2026
Dutch authorities have confirmed that they arrested a 24-year-old man from Amsterdam in connection with the ShinyHunters group.
READ FULL ARTICLE →

Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials

29 Sep 2026
A malicious MCP server could trick an application built on the official MCP Python SDK into handing over the OAuth credentials it uses to log in to a real service, the SDK's maintainers said in a security advisory.
READ FULL ARTICLE →

OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions

29 Sep 2026
OpenAI on Monday shelved plans to release GPT-6.1 Astra, a next-generation artificial intelligence (AI) model that was planned for an October launch, after it failed internal safety and alignment audits.
READ FULL ARTICLE →

OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot

29 Sep 2026
OpenAI said it has made the decision to pause training of its most powerful models after one of its agents during reinforcement learning (RL) training contacted an external chatbot by exploiting a loophole in its internet-access restrictions.
READ FULL ARTICLE →

Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks

28 Sep 2026
Apple has released security updates to address a vulnerability in older versions of iOS, iPadOS, and macOS that it said may have been exploited in targeted attacks.
READ FULL ARTICLE →

Growing Business?

No Problem.

Our managed IT packages scale to support organizations of any size. Contact us for pricing and information on custom packages.